General

  • Target

    1a36981330e464dc6571f63a5e43f6a5_JaffaCakes118

  • Size

    724KB

  • Sample

    240628-p8wcqs1apc

  • MD5

    1a36981330e464dc6571f63a5e43f6a5

  • SHA1

    092e84e3441323fbfbf2eb1dcb555b4f53e55c60

  • SHA256

    c42936444650e52d58dd8fbd56f69ccbb7822309ce57dd575e83959fcf0d845f

  • SHA512

    4f05595bd027d317a2a45b97b3c0d5f8d0939b4133ecec7ec917f5f48911082855ce300e613246bd9241e89522ca779b9adf0a3445d5ed0cb36b66622cbc2834

  • SSDEEP

    12288:7NLMlgQLewMI9BHdQ+rmNMo23S+qGxJHYWLzKNf4Jh0g+vmL3qPYmJpdzNZJ:SHXXHe+rCMNXHYq2kh1byYmL

Score
7/10

Malware Config

Targets

    • Target

      1a36981330e464dc6571f63a5e43f6a5_JaffaCakes118

    • Size

      724KB

    • MD5

      1a36981330e464dc6571f63a5e43f6a5

    • SHA1

      092e84e3441323fbfbf2eb1dcb555b4f53e55c60

    • SHA256

      c42936444650e52d58dd8fbd56f69ccbb7822309ce57dd575e83959fcf0d845f

    • SHA512

      4f05595bd027d317a2a45b97b3c0d5f8d0939b4133ecec7ec917f5f48911082855ce300e613246bd9241e89522ca779b9adf0a3445d5ed0cb36b66622cbc2834

    • SSDEEP

      12288:7NLMlgQLewMI9BHdQ+rmNMo23S+qGxJHYWLzKNf4Jh0g+vmL3qPYmJpdzNZJ:SHXXHe+rCMNXHYq2kh1byYmL

    Score
    7/10
    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

    • Suspicious use of NtSetInformationThreadHideFromDebugger

MITRE ATT&CK Matrix

Tasks